Aller au contenu

Fiche vulnérabilité

CVE-2024-23813 : faille critique siemens polarion alm (CVSS 9.8)

Description

A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The REST API endpoints of doorsconnector of the affected product lacks proper authentication. An unauthenticated attacker could access the endpoints, and potentially execute code.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
13 févr. 2024
Dernière mise à jour
17 juin 2026

Produits concernés

  • siemens polarion alm

Références

Rechercher une autre vulnérabilité dans la base CVE